Cyber Security Analyst III - Digital Forensics and Incident Response in New York at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Cyber Security Analyst III - Digital Forensics and Incident Response based in United States.
This role supports enterprise cybersecurity operations and incident response within a highly regulated federal environment.
You will conduct hands-on digital forensic investigations, analyze security events, and help contain and recover from confirmed cyber incidents.
Working across SIEM, NIDS, SOAR, endpoint protection, firewalls, DLP, email filtering, scanners, and PCAP tools, you will investigate threats across the enterprise.
The position combines technical analysis with incident reporting, remediation, security monitoring, and operational support.
You will also contribute to audits, assessments, disaster recovery exercises, and continuous improvement of cybersecurity processes and tools.
As an experienced analyst, you will work with limited supervision while coaching and mentoring junior cybersecurity professionals.
This remote U.S. opportunity offers the chance to contribute to mission-critical cybersecurity operations supporting a major federal site.
- Conduct digital forensic investigations on targeted endpoints using appropriate forensic tools and methodologies.
- Monitor, analyze, and respond to security events across the enterprise using SIEM, NIDS, SOAR, endpoint protection, firewall, DLP, email filtering, vulnerability scanning, and PCAP technologies.
- Identify reportable security incidents in accordance with established procedures and serve as an incident handler throughout investigation and response activities.
- Collect and analyze relevant data, evidence, and artifacts; document findings; prepare incident reports; communicate results to management; and execute mitigation, containment, and recovery activities.
- Monitor security reports and threat intelligence from multiple sources and translate relevant findings into actionable response activities.
- Distribute threat advisories, vulnerability reports, and official cybersecurity directives to appropriate customers and leadership.
- Participate in disaster recovery exercises and cybersecurity-related events.
- Support the operation, maintenance, and continuous improvement of cybersecurity tools and technologies.
- Contribute to cybersecurity audits, assessments, investigations, and information requests.
- Independently manage assigned projects and processes while maintaining appropriate priorities and meeting operational objectives.
- Review and coach the work of junior professionals and provide technical mentoring and training to developing analysts.
- Perform additional cybersecurity duties and responsibilities as assigned.
- Maintain the physical capabilities required for extended computer use, including repetitive keyboarding, visual and communication activities, occasional bending, kneeling, reaching, lifting, and safe travel by vehicle or aircraft.
- Bachelor’s degree and 5+ years of relevant experience, or an equivalent combination of education, training, and professional experience.
- Experience in cybersecurity, information technology, systems analysis, or a related field, with hands-on experience in incident response and/or digital forensics.
- Working knowledge of recognized cybersecurity compliance frameworks such as NIST, CIS Critical Security Controls, or ISO 27001/27002.
- Strong analytical and investigative abilities, with the capacity to collect evidence, assess security events, identify threats, and determine appropriate response actions.
- Ability to independently set priorities, manage multiple responsibilities, and complete projects with limited supervision.
- Excellent written, verbal, and interpersonal communication skills, including the ability to communicate technical findings clearly to different audiences.
- Strong teamwork and collaboration skills, combined with a customer-focused approach.
- Experience working in industrial control system (ICS), operational technology (OT), or federal FISMA-regulated environments is preferred.
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related discipline is preferred.
- Industry certifications such as GCFA, GCIH, GNFA, CySA+, or CEH are preferred.
- Ability to pass required pre-employment background and drug screening.
- Must have identification compliant with the REAL ID Act at the time of hire.
- Ability to obtain and maintain a Department of Energy access authorization and HSPD-12 Personal Identity Verification (PIV) credential, including successful completion of the required federal background investigation.
- Ability to comply with applicable federal requirements governing controlled substances as a condition of employment.
- Annual salary range of $100,457–$161,384 USD.
- Paid holidays.
- Paid time off.
- 401(k) retirement plan with employer matching.
- Health insurance options through the Federal Employee Health Benefits (FEHB) program.
- Dental insurance.
- Vision insurance.
- Life insurance benefits.
- Disability benefits.
- Full-time remote work within the United States.
- Opportunity to work on mission-critical cybersecurity operations in a federal environment.
- Professional development through exposure to digital forensics, incident response, threat intelligence, security operations, and regulated cybersecurity frameworks.